cyber

CVE-2026-59822 — BerriAI LiteLLM Improper Authentication Vulnerability

BerriAI LiteLLM contains an improper authentication vulnerability in the MCP Streamable HTTP endpoint that could allow an unauthenticated attacker to establish an authenticated MCP session using an arbitrary Bearer token.

Reported by CISA KEV
Read the complete report at CISA KEV
Verification notice

IntelMap indexes open-source reporting. This page identifies what a source reported; it does not independently confirm the claim.

INCIDENT EVOLUTION

1 recorded state

Signal first indexedP3 · 98% quality · 1 source

Explore this day in the archive →
QUALITY CONTROL

Report this signal

Reports are anonymous and retained privately for editorial review.